Manager Information Security - Cyber Threat Exposure
$105.79k - $141.05kLumen
Lumen is the trusted network for the AI‑powered world, connecting people, data, and applications through our expansive fiber network and connected ecosystem. We enable secure, high‑performance connectivity across cloud, edge, and AI workloads for enterprises, governments, and communities.
At Lumen, you’ll work on infrastructure customers rely on today and build for what’s next, where performance, security, and resilience matter.
This is a high accountability environment where bold ideas drive real innovation for our customers, partners, and industry. The work is challenging, expectations are clear, and trust is built into how we operate. If you’re ready to take ownership, deliver meaningful impact, and help shape the future of AI‑ready connectivity, join us today.
The Role
The Manager of Information Security—Cyber Threat Exposure Management plays a critical role in solving complex challenges and building the infrastructure that powers what’s next for our customers and our world.
In this role, you won’t just manage vulnerabilities—you’ll shape how Lumen identifies, prioritizes, and reduces cyber risk across a rapidly evolving digital landscape. From strengthening asset visibility to advancing risk-based vulnerability management and governance, your work directly enables innovation by ensuring our foundation is secure, resilient, and ready to scale.
Location
This is a remote postion open to candidates based anywhere in the US.
The Main Responsibilities
This role matures vulnerability and asset management programs, improves data quality, advances risk-based remediation, and collaborates across security and technology teams to reduce enterprise exposure.
- Own the strategy, execution, and continuous maturity of the enterprise vulnerability management program, driving measurable reduction of cyber risk.
- Implement and refine risk-based prioritization using threat intelligence, exploitability, asset criticality, exposure, and business impact to focus remediation on the highest-risk vulnerabilities.
- Ensure comprehensive visibility across internal, cloud, and externally exposed assets through effective asset discovery, inventory governance, ownership assignment, and data quality management.
- Oversee vulnerability management and asset discovery platforms, supporting tool optimization, process automation, and consistent operational workflows.
- Drive remediation accountability by partnering with Security, IT, Cloud, Engineering, and business stakeholders to address critical vulnerabilities, visibility gaps, and risk exceptions.
- Define, monitor, and report key program metrics, including vulnerability backlog, mean time to remediate, SLA compliance, exception trends, asset coverage, and external exposure trends.
- Deliver clear executive-level reporting that translates technical findings into business risk, remediation priorities, and measurable program outcomes.
- Support audit, regulatory, and compliance requirements by maintaining evidence, reporting, and processes aligned to applicable security frameworks and control expectations.
- Lead, coach, and develop a high-performing team while fostering accountability, collaboration, operational excellence, and continuous improvement.
What We Look For in a Candidate
Minimum Qualifications:
- 5+ years of experience in information security, vulnerability management, security risk assessment, application security, system security, network security, or a related discipline.
- Experience leading, coaching, or managing technical personnel in a security, infrastructure, cloud, or technology operations environment.
- Undergraduate degree in Computer Science, Engineering, Information Security, or a related field, or equivalent combination of education and relevant experience.
- Broad technical knowledge of current and emerging technologies used within enterprise infrastructure, cloud environments, applications, and security operations.
- Experience communicating technical security risk to technical and non-technical audiences, including management and cross-functional stakeholders.
- Applicable professional or technical certifications should be in place, or the candidate must be willing to pursue relevant certification.
Preferred Qualifications:
- Professional or technical certifications such as CISSP, CISM, GISEC, Security+, cloud security certifications, or related security credentials.
- Experience with modern vulnerability management, asset discovery, cyber asset attack surface management, cloud security posture management, or external attack surface management platforms.
- Demonstrated understanding of risk-based vulnerability prioritization, remediation governance, exception management, and vulnerability lifecycle management.
- Knowledge of information security frameworks, control standards, and regulatory obligations, including ISO 27001/27002, NIST, SOX, PCI, FISMA, HIPAA, NACHA, and SSAE-16.
- Experience supporting audit readiness, evidence collection, control validation, and security reporting requirements.
- Knowledge of project management practices and experience driving cross-functional initiatives through influence, accountability, and measurable outcomes.
- Experience working in large enterprise environments, including complex data center, network, cloud, and hybrid technology ecosystems.
- Strong ability to translate complex technical findings into clear executive-level communication, business risk context, and actionable recommendations.
Compensation
This information reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual pay is based on skills, experience and other relevant factors.
Location Based Pay Ranges
$105,786 - $141,047 in these states: AL AR AZ FL GA IA ID IN KS KY LA ME MO MS MT ND NE NM OH OK PA SC SD TN UT VT WI WV WY
$111,074 - $148,099 in these states: CO HI MI MN NC NH NV OR RI
$116,364 - $155,152 in these states: AK CA CT DC DE IL MA MD NJ NY TX VA WA
Lumen offers a comprehensive package featuring a broad range of Health, Life, Voluntary Lifestyle benefits and other perks that enhance your physical, mental, emotional and financial wellbeing. We're able to answer any additional questions you may have about our bonus structure (short-term incentives, long-term incentives and/or sales compensation) as you move through the selection process.
Learn more about Lumen's:
Benefits
#LI-Remote
Requisition #: 342405
Life at Lumen
Life at Lumen is human and connected, even in a fast moving, AI‑focused organization. We set clear expectations and trust people to meet them. With real support and shared accountability, teams collaborate better, move faster, and deliver meaningful outcomes.
Our Lumen 8 behaviors guide how we interact, make decisions, and work together, shaping a culture built to perform and win.
To learn more about Life at Lumen and how we live the Lumen 8, please visit:
Background Screening
If you are selected for a position, there will be a background screen, which may include checks for criminal records and/or motor vehicle reports and/or drug screening, depending on the position requirements. For more information on these checks, please refer to the Post Offer section of our FAQ page . Job-related concerns identified during the background screening may disqualify you from the new position or your current role. Background results will be evaluated on a case-by-case basis.
Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
Equal Employment Opportunities
We are committed to providing equal employment opportunities to all persons regardless of race, color, ancestry, citizenship, national origin, religion, veteran status, disability, genetic characteristic or information, age, gender, sexual orientation, gender identity, gender expression, marital status, family status, pregnancy, or other legally protected status (collectively, “protected statuses”). We do not tolerate unlawful discrimination in any employment decisions, including recruiting, hiring, compensation, promotion, benefits, discipline, termination, job assignments or training.
Privacy Notice
Lumen is committed to protecting the privacy and security of personal information collected during the recruitment and hiring process. Our Privacy Notice explains how we collect, use, disclose, and protect applicant information, as well as how individuals may request access to or deletion of their personal data.
To review Lumen’s Privacy Notice, please visit:
Disclaimer
The job responsibilities described above indicate the general nature and level of work performed by employees within this classification. It is not intended to include a comprehensive inventory of all duties and responsibilities for this job. Job duties and responsibilities are subject to change based on evolving business needs and conditions.
In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.
Please be advised that Lumen does not require any form of payment from job applicants during the recruitment process. All legitimate job openings will be posted on our official website or communicated through official company email addresses. If you encounter any job offers that request payment in exchange for employment at Lumen, they are not for employment with us, but may relate to another company with a similar name.
$62.3k
...The Information Security Analyst reports directly to the Director of Technology... ..., and stakeholders from cyber threats. This position is... ...Cybersecurity Program Management & Operations Lead the... ...Analyze business impact and exposure to cybersecurity risks, developing...CyberWork at officeShift work- ...Summary: As a Cyber Security Administrator, you will be responsible... ...from cybersecurity threats while handling network administration... ...response protocols, and manage network security systems.... ...SKILLSBachelor's Degree in Information Technology, Cyber Security,...CyberPermanent employmentWork at office
$146k - $182.52k
...Cyber Security Program Manager Job Type: Corporate Office Location: TULSA, OK, US, 74134 Primary Purpose... ...related to protected health information. Major functions for this position... ...governance, architecture, cloud security, threat detection, incident response, and...CyberWork experience placementWork at office- ...Interest: Software Development; Information Security Pay Transparency Salary... ...and Cavanal Hill Investment Management, Inc. BOKF, NA operates... ...identify and mitigate emerging threats across the organization.... ...with 5+ years of experience in Cyber Security or a related technical...Cyber
$170.6k - $390k
...world to grow your career in information security! The opportunity The... ...our dynamic team as a Senior Manager in Cybersecurity Engineering... ...data against a myriad of threats while leading cross-departmental... ...and Infrastructure‑as‑Code exposure (e.g., Terraform, ARM,...SuggestedSummer holidayRemote workFlexible hours$100k - $172.5k
...Enterprise Strategy & Security Job Sub Function:... ...processes. Act as a SME on cyber security matters and... ..., data flow diagrams, threat models, security... ...Security, SBOM, and risk management documentation.... ...relationships with Abiomed’s Information Sharing and Analysis Organizations...CyberFull timeTemporary workWork at officeLocal areaImmediate startRemote work3 days per week$153k - $160k
Security Analyst This position requires an... ..., investigation, threat hunting, and incident... ...endpoint policy management and incident investigations... ...technologies. • Exposure to packet capture... .... Company Information: Criterion... ...Searchable Job Titles: • Cyber Security Analyst...CyberFull time$150k - $155k
...have prior US Navy or Coastguard Maritime Cyber Security Experience The Senior Maritime... ...expert cybersecurity support to the MARAD Information Assurance Program, supporting system authorization... ...System Owners, and ISSMs to manage security documentation, assess risk, support...CyberFull timeWork at officeRemote work- ...architectures, and operational security capabilities across cloud,... ...organizational systems, sensitive information, and mission-critical services against evolving cyber threats. Provide leadership in... ...detection, incident response, risk management, compliance, vulnerability...CyberFull timeTemporary workWork at officeFlexible hoursShift work
- ...operate, and maintain cyber-physical solutions for... ...-critical facilities, secure environments, complex... ...Installation Compliance Manager (Tech Specialist 4)... ...sheet and make sure the information is correct. Review... .... Abilities: Exposure to computer screens for...CyberWork at officeLocal areaFlexible hoursNight shift
- ...programs across national security, defense, and... ...- Experience or exposure to vulnerability management, compliance tracking... ...in Cybersecurity, Information Technology, Computer... ...- Execute directed cyber actions including network... ...alert triage, threat detection, and initial...CyberMinimum wageFull timeContract workTemporary workWork experience placementRemote work
- ...investigations into financial crimes, including counterfeiting, cyber fraud, and other threats to the financial infrastructure of the United States.... .... Designing, planning, and implementing advanced security measures for National Special Security Events (NSSEs), such...Cyber
$106.8k - $194.8k
...responsible for implementing and managing Web Application Firewall (... ...client applications from cyber threats. You will work within a team... ...professionals to establish effective security measures that safeguard web... ...degree in computer science, Information Technology, Cybersecurity,...CyberSummer holidayFlexible hours- ...collaboration with the GRC Manager, the Sr. GRC... ...details on the security practices and compliance... ...human‑centric threats to cultivate a... ...scopes, and timing of cyber awareness... ...preferably within the Information Security or Technology... ...Risk and Threat exposure Experience with administering...CyberImmediate startFlexible hours
- ...Oman is looking for a WAF Operations Solution Engineer to implement and manage Web Application Firewalls. This role involves protecting client applications from cyber threats and optimizing security measures. The ideal candidate will have a Bachelor's degree in a...CyberFlexible hours
- ...Ernst & Young Oman seeks a Digital Identity & Authentication SME to help organizations enhance user experiences and manage access using technologies like Microsoft Entra, Okta, and Saviynt. Responsibilities include conducting assessments and implementing IAM solutions...CyberFlexible hours
- ...BOK Financial Corporation is looking for a Security Engineer III specializing in Application Security in Tulsa, Oklahoma. This role entails... ...response strategies. Candidates should have a skillset in Cyber Security, experience with application security tools, and a relevant...Cyber
- ...collection, analysis, and evaluation of information from various sources, the... ...determine if money laundering, cyber-crime, identity theft,... ...Ensures new trends and potential threats are evaluated, documented, and escalated to management. # Assists with the secondary...Cyber
$89k - $143.75k
...design reviews with a cyber-lens. Performing periodic... ...risk assessment of security vulnerabilities in... ...outlined in the Quality Management System.... ...penetration testing, threat modeling, vulnerability... ...For additional general information on Company benefits, please...CyberFull timeTemporary workWork at officeLocal areaRemote workNight shift- ...Posting Details Position Information Position Title Network Engineer Job Description... ...and used by investigators at the institutes. Manage and address issues with the physical and cyber security of research equipment and devices as needed....CyberWork experience placement
$104.8k - $192.2k
...HR systems, and cloud platforms. Implement identity lifecycle management process (provisioning, de‑provisioning, access reviews).... ...orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status...CyberWork experience placementSummer holidayFlexible hours$172k - $250k
...Grant Thornton is seeking a Director of Information Security Audit & Compliance to join the team. Approved office locations can be found below... ...be responsible for establishing global delivery centers, managing internal and external audits, and ensuring the information security...InternshipSeasonal workWork at officeLocal areaFlexible hours3 days per week- ...Possibility SageNet is a leading managed services provider... ...7/365 U.S.-based Network and Security Operations Centers, geographically... ...data environments is a plus ~ Exposure to cloud-based AI tools,... ...origin, disability, genetic information, veteran or military status,...Full timeFor contractors
$144.9k - $265.8k
...Entra, Okta, Ping, Saviynt Design cloud security and IAM architectures for Azure, AWS,... ..., authorization, identity management) Design and re-engineer processes for... ...California, please click here for additional information. EY focuses on high-ethical standards...CyberWork experience placementSummer holidayFlexible hours$91k - $321.5k
...regulatory compliance and managing risks for clients,... ...sound judgment to make informed decisions. Your role will... ...consistent delivery, reduce exposure, and confirm adherence... ...managed services, (3) cyber managed services, or (4... ...to establish a secure and trusted workplace for...CyberFull timeContract workH1b- ...assisting with execution of directed cyber actions under senior guidance... ..., and allow/block list management following established... ...scorecard data. - Monitor security tools and alerts, performing... ...Bachelor's degree in Cybersecurity, Information Technology, Computer Science,...CyberMinimum wageContract workTemporary workWork experience placementRemote work
- ...Investigations involve the collection, analysis, and evaluation of information from various sources, the documentation of research findings,... ...and escalations to effectively determine if money laundering, cyber-crime, identity theft, terrorist financing, human trafficking,...Cyber
£20 per hour
...and innovation differentiators • Collaborate with capture managers and business development teams to shape opportunities pre-RFP... ...and external to Maximus. • Collaborate with operations, information security, and human resource teams early in capture process to ensure...Seasonal workLocal areaFlexible hours$22 per hour
...industry's premier provider of contract security services. We're looking for someone who... ...equivalent A minimum of one (1) year of management experience Must have reliable transportation... .... Your Skills and Competencies: Threat assessment & risk management Incident response...Hourly payContract workLocal areaMonday to FridayWeekend work- ...hazards, infrastructure failures, cyber events, or operational... ...users, Enterprise Architecture, Security Architecture, Platform... ...standards with enterprise risk management and regulatory expectations.... ...sexual orientation, genetic information or veteran status. Please contact...CyberWork at office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Manager Information Security - Cyber Threat Exposure. Be the first to apply!


